Description
Multiple cross-site scripting (XSS) vulnerabilities in the web administration interface in Sophos ES1000 and ES4000 Email Security Appliance 2.1.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) error and (2) go parameters to the login page.
Published: 2008-02-20
Score: 4.3 Medium
EPSS: 13.6% Moderate
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-07T08:01:39.350Z

Reserved: 2008-02-20T00:00:00.000Z

Link: CVE-2008-0838

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2008-02-20T21:44:00.000

Modified: 2025-04-09T00:30:58.490

Link: CVE-2008-0838

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses